-- Leo's gemini proxy

-- Connecting to gemini.tuxmachines.org:1965...

-- Connected

-- Sending request

-- Meta line: 20 text/gemini;lang=en-GB

Tux Machines


Security Leftovers


Posted by Roy Schestowitz on Feb 15, 2023,

updated Feb 15, 2023


Videos: GNU/Linux, KDE, and More

Audiocasts/Shows: Karen Sandler, WordPress, "I Love Free Software Day", and More



Security updates for Monday [LWN.net]


↺ Security updates for Monday [LWN.net]


> Security updates have been issued by Debian (libde265 and snort), Fedora (chromium, openssl, php-symfony4, qt5-qtbase, qt6-qtbase, tigervnc, vim, wireshark, xorg-x11-server, and xorg-x11-server-Xwayland), Slackware (gnutls), SUSE (apr-util, grafana, java-1_8_0-ibm, kernel, less, libksba, opera, postgresql12, postgresql13, postgresql14, postgresql15, python-py, webkit2gtk3, wireshark, and xrdp), and Ubuntu (nova and webkit2gtk).



Zscaler to Acquire Israeli Startup Canonic Security


↺ Zscaler to Acquire Israeli Startup Canonic Security


> Zcaler plans to acquire Israeli startup Canonic Security to expand into the red-hot software supply chain security business.


> The post Zscaler to Acquire Israeli Startup Canonic Security appeared first on SecurityWeek.


↺ Zscaler to Acquire Israeli Startup Canonic Security

↺ SecurityWeek


↺ Zscaler to Acquire Israeli Startup Canonic Security

↺ SecurityWeek



Security updates for Tuesday


↺ Security updates for Tuesday


> Security updates have been issued by Debian (imagemagick), Fedora (xml-security-c), Red Hat (grub2), SUSE (chromium, freerdp, libbpf, and python-setuptools), and Ubuntu (fig2dev and python-django).



Patch Tuesday: Microsoft Warns of Exploited Windows - Zero-Days


↺ Patch Tuesday: Microsoft Warns of Exploited Windows - Zero-Days


> Microsoft’s Patch Tuesday machine is humming loudly with software updates to fix at least 76 vulnerabilities in Windows and OS components.



iTWire - Microsoft issues 75 patches, including three for zero-days


↺ iTWire - Microsoft issues 75 patches, including three for zero-days


> Microsoft has released patches for 75 vulnerabilities overnight on its second Patch Tuesday for the year, with nine being rated critical.


> There were 66 fixes rated important and the company issued fixes for three zero-day vulnerabilities.


> Top among the flaws being exploited in the wild was one that allowed remote code execution in a Windows graphics component, flagged as CVE-2023-21823.


> Satnam Narang, senior staff research engineer at security vendor Tenable, said of this bug: "Being able to elevate privileges once on a target system is important for attackers seeking to do more damage.



Adobe Plugs Critical Security Holes in Illustrator, After Effects Software


↺ Adobe Plugs Critical Security Holes in Illustrator, After Effects Software


> Patch Tuesday: Adobe ships security fixes for at least a half dozen vulnerabilities that expose Windows and macOS users to malicious hacker attacks.



Spanish, US Authorities Dismantle Cybercrime Ring That Defrauded Victims of $5.3 Million


↺ Spanish, US Authorities Dismantle Cybercrime Ring That Defrauded Victims of $5.3 Million


> Spanish and US authorities have dismantled a cybercrime ring that defrauded victims of more than $5.3 million.



Pepsi Bottling Ventures Discloses Data Breach


↺ Pepsi Bottling Ventures Discloses Data Breach


> Pepsi Bottling Ventures, the largest privately-held bottler of Pepsi-Cola products in the United States, says data was stolen from its systems following a malware attack.



GoAnywhere Zero-Day Attack Victims Start Disclosing Significant Impact


↺ GoAnywhere Zero-Day Attack Victims Start Disclosing Significant Impact


> Organizations hit by exploitation of the GoAnywhere MFT zero-day vulnerability CVE-2023-0669 have started coming forward.



Hackers Target Bahrain Airport, News Sites to Mark Uprising


↺ Hackers Target Bahrain Airport, News Sites to Mark Uprising


> Hackers took down the websites of Bahrain’s international airport and state news agency to mark the 12-year anniversary of an Arab Spring uprising in the small Gulf country.



Parrot OS vs Kali Linux vs Ubuntu Comparison: Which To Choose? - DekiSoft


↺ Parrot OS vs Kali Linux vs Ubuntu Comparison: Which To Choose? - DekiSoft


> Linux has been known for its different distributions that cater to different needs. The most famous among all is Kali Linux which is a penetration testing oriented for security professionals. From the time it has been released, it has gone through various iterations in the form of updates while others were also being developed throughout the globe.



5 Most Common Cyber Attacks In 2023


↺ 5 Most Common Cyber Attacks In 2023


> Building a company and keeping it afloat amidst financial turmoil is challenging, and it isn’t made any easier by the number of hackers who are taking aim at thousands of companies every day.



What Will It Take?


↺ What Will It Take?


> What will it take for policy makers to take cybersecurity seriously? Not minimal-change seriously. Not here-and-there seriously. But really seriously. What will it take for policy makers to take cybersecurity seriously enough to enact substantive legislative changes that would address the problems? It’s not enough for the average person to be afraid of cyberattacks. They need to know that there are engineering fixes--and that’s something we can provide.




gemini.tuxmachines.org

-- Response ended

-- Page fetched on Thu Jun 13 12:27:11 2024